Re: [PATCH] x86/efi: pull NV+BS variables out before we exit bootservices

From: Matthew Garrett
Date: Tue Mar 19 2013 - 12:35:40 EST


On Tue, Mar 19, 2013 at 08:14:45AM +0000, James Bottomley wrote:

> Any security assumptions that rely on inability to read certain
> information aren't really going to be that secure. Inability to modify,
> sure, but inability to read, not really.

Well, I guess that's public/private key cryptography screwed.

--
Matthew Garrett | mjg59@xxxxxxxxxxxxx
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/